Security Threat Analyst

Metrobank

Philippines

Hybrid

PHP 1,800,000 - 2,400,000

Full time

40 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Metrobank seeks a Security Threat Analyst (SOC Manager) to lead the Security Operation Center, overseeing 24x7 monitoring, incident response, and threat detection. You will guide hiring, training, and performance evaluations, while shaping incident processes, crisis communications, and security postures.

You will report to the CTMD Head and CISO, collaborating with ISD teams to enhance tools, workflows, and governance. Strong leadership, communication, and cybersecurity expertise are essential.

Qualifications

  • Bachelor’s Degree in Information Technology, Computer Science, Cybersecurity, or a related field.
  • Minimum of 8 years of experience in Cybersecurity, Security Operations, Incident Response, or Threat Management.
  • At least 3 years of people management experience, preferably leading a Security Operations Center (SOC).
  • Strong experience in 24x7 Security Monitoring, Incident Response, Threat Detection, and Security Operations.
  • Hands-on experience with SIEM platforms (e.g., Splunk, QRadar, Microsoft Sentinel) and security monitoring tools.
  • Good understanding of cybersecurity frameworks, incident management, vulnerability management, and threat hunting.
  • Experience in team leadership, vendor management, stakeholder management, and operational reporting.

Responsibilities

  • Leads and manages overall direction and operations of the Security Operation Center (SOC)
  • Managing the team's hiring, training and evaluation of team members
  • Creates processes, assess incident reports, develop and implement necessary crisis communication plans
  • Provides update and report to the CTMD Head and CISO
  • Collaborate with other ISD teams for security infrastructure improvements and threat monitoring

Skills

Security Operations
Incident Response
Threat Detection
Leadership
Vendor Management

Education

Bachelor’s Degree in IT/CS/Cybersecurity

Tools

Splunk
QRadar
Microsoft Sentinel

Job description

Here at Metrobank, we don't simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help you secure your future and lead a fulfilling career. And with Metrobank's strong heart for the community, you have the chance to give back and make worthwhile contributions to our nation's economic and social development.

With Metrobank, a meaningful life is within your reach!

Position Title: Security Threat Analyst (SOC Manager)
Job Summary
  • Leads and manages overall direction and operations of the Security Operation Center (SOC)
  • Managing the team's hiring, training and evaluation of team members
  • Creates processes, assess incident reports, develop and implement necessary crisis communication plans
  • Provides update and report to the CTMD Head and CISO
Duties and Responsibilities
  • Primarily responsible for 24x7 security event monitoring, incident management, and initial incident response
  • Provides overall direction to the security monitoring team to achieve the team's goals and deliverables
  • Provides technical guidance if needed
  • Ensure compliance with SLA, process adherence, and process improvements to achieve operational objectives
  • Collaborate with the rest of CTMD teams (threat hunting, incident response, and vulnerability management) to ensure proper monitoring and response to cyber security incidents
  • Collaborate with the rest of ISD teams for security infrastructure improvements, identifying threat vectors, and developing use cases for security monitoring
  • Communication of SOC value and posturing relationship with Computer Security Incident Emergency Response Team (CSIERT) and industry partners
  • Responsible for the development, review, and documentation of SOC policies, standards, and procedures
  • Ensure that the skills development of team members is continuous and aligned to their role
  • Ensure that performance metrics for SOC, services, and tools are up to date
  • Creation of reports, dashboards, and metrics for SOC operations and presentation to management
  • Responsible for team and vendor management, overall use of resources, and initiation of corrective action to ensure effective and efficient SOC operations
  • Assist ISD security architects in identifying appropriate security tools to be used for security incidents
  • Oversees the implementation and integration of security tools in the network as well as ensuring that tool usage is maximized
  • Ensure incident assessment, reporting, communication, escalation, and monitoring
  • Mentor the SOC Team regarding risk management, information security controls, incident analysis, incident response, incident documentation, SIEM tuning and monitoring, and other operational tasks in support of technologies managed by the Security Operations
  • Performs other information security-related duties and responsibilities as directed by the Head of the Cyber Threat Management Department
Qualifications
  • Bachelor’s Degree in Information Technology, Computer Science, Cybersecurity, or a related field.
  • Minimum of 8 years of experience in Cybersecurity, Security Operations, Incident Response, or Threat Management.
  • At least 3 years of people management experience, preferably leading a Security Operations Center (SOC).
  • Strong experience in 24x7 Security Monitoring, Incident Response, Threat Detection, and Security Operations.
  • Hands-on experience with SIEM platforms (e.g., Splunk, QRadar, Microsoft Sentinel) and security monitoring tools.
  • Good understanding of cybersecurity frameworks, incident management, vulnerability management, and threat hunting.
  • Experience in team leadership, vendor management, stakeholder management, and operational reporting.
  • Strong analytical, problem-solving, and communication skills.
  • Experience in the banking or financial services industry is preferred.
Preferred Certifications:
  • CISSP, CISM, GIAC, CRISC, CEH, or equivalent cybersecurity certifications.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Threat Analyst
Security Threat Analyst

Metrobank • Taguig

On-site
PHP 1,100,000 - 2,100,000
Security Threat & SOC Manager — Lead 24x7 Defense
Security Threat & SOC Manager — Lead 24x7 Defense

Metrobank • Taguig

On-site
PHP 1,100,000 - 2,100,000
Security Threat Analyst
Security Threat Analyst

Metropolitan Bank & Trust Company • Metro Manila

On-site
PHP 350,000 - 500,000
Senior SOC Leader: Cyber Threat & Incident Response
Senior SOC Leader: Cyber Threat & Incident Response

Metrobank • Philippines

Hybrid
PHP 1,800,000 - 2,400,000
SOC Lead
SOC Lead

OFFSHORE BUSINESS PROCESSING INC. • Philippines

On-site
PHP 558,000 - 614,000
HMO day 1
Perks & rewards
Travel opportunities
+3
Cybersecurity Engineer
Cybersecurity Engineer

Hrtx • Philippines

On-site
PHP 1,000,000 - 1,800,000
Hybrid work setup
SOC Analyst
SOC Analyst

Offshore Business Processing Inc. • Hinoba-an

On-site
PHP 446,000 - 558,000
HMO on Day 1
Perks and rewards
Travel opportunities
+1
SOC Analyst
SOC Analyst

OFFSHORE BUSINESS PROCESSING INC. • Philippines

On-site
PHP 446,000 - 558,000
HMO on Day 1
Receive promising perks and rewards
Experience travel opportunities
+3
Security Operations and Incident Manager
Security Operations and Incident Manager

Private Advertiser • Mandaluyong

On-site
PHP 3,000,000 - 5,000,000
SOC Lead
SOC Lead

OFFSHORE BUSINESS PROCESSING INC. • Metro Manila

On-site
PHP 558,000 - 614,000
HMO on Day 1
Travel opportunities
Performance rewards
+3